CVE-2019-19984

MEDIUM WAF: Low
CVSS 6.3 Published: 2019-12-26
CWE-863

The WordPress plugin, Email Subscribers & Newsletters, before 4.2.3 had a flaw that allowed users with edit_post capabilities to manage plugin settings and email campaigns.

WAF Coverage Analysis

Incorrect Authorization Low WAF Coverage

OWASP: A01:2021 Broken Access Control

Affected Software

VendorProductVersion
icegramemail_subscribers_\&_newslettersup to 4.2.3

References

Back to CVE Database